<?php
/**
 *      [Discuz!] (C)2001-2099 Comsenz Inc.
 *      This is NOT a freeware, use is subject to license terms
 *
 *      $Id: install_function.php 33326 2013-05-28 08:52:45Z kamichen $
 */
if (!defined('IN_COMSENZ')) {
    exit('Access Denied');
}

function show_msg($error_no, $error_msg = 'ok', $success = 1, $quit = TRUE) {
    if (VIEW_OFF) {
        $error_code = $success ? 0 : constant(strtoupper($error_no));
        $error_msg = empty($error_msg) ? $error_no : $error_msg;
        $error_msg = str_replace('"', '\"', $error_msg);
        $str = "<root>\n";
        $str .= "\t<error errorCode=\"$error_code\" errorMessage=\"$error_msg\" />\n";
        $str .= "</root>";
        echo $str;
        exit;
    } else {
        show_header();
        global $step;

        $title = lang($error_no);
        $comment = lang($error_no . '_comment', false);
        $errormsg = '';

        if ($error_msg) {
            if (!empty($error_msg)) {
                foreach ((array) $error_msg as $k => $v) {
                    if (is_numeric($k)) {
                        $comment .= "<li><em class=\"red\">" . lang($v) . "</em></li>";
                    }
                }
            }
        }

        if ($step > 0) {
            echo "<div class=\"desc\"><b>$title</b><ul>$comment</ul>";
        } else {
            echo "</div><div class=\"main\" style=\"margin-top: -123px;\"><b>$title</b><ul style=\"line-height: 200%; margin-left: 30px;\">$comment</ul>";
        }

        if ($quit) {
            echo '<br /><span class="red">' . lang('error_quit_msg') . '</span><br /><br /><br />';
        }

        echo '<input type="button" onclick="history.back()" value="' . lang('click_to_back') . '" /><br /><br /><br />';

        echo '</div>';

        $quit && show_footer();
    }
}

function check_db($dbhost, $dbuser, $dbpw, $dbname, $tablepre) {
    if (!function_exists('mysql_connect') && !function_exists('mysqli_connect')) {
        show_msg('undefine_func', 'mysql_connect', 0);
    }
    $mysqlmode = function_exists('mysql_connect') ? 'mysql' : 'mysqli';
    $link = ($mysqlmode == 'mysql') ? @mysql_connect($dbhost, $dbuser, $dbpw) : new mysqli($dbhost, $dbuser, $dbpw);
    if (!$link) {
        $errno = ($mysqlmode == 'mysql') ? mysql_errno() : mysqli_errno();
        $error = ($mysqlmode == 'mysql') ? mysql_error() : mysqli_error();
        if ($errno == 1045) {
            show_msg('database_errno_1045', $error, 0);
        } elseif ($errno == 2003) {
            show_msg('database_errno_2003', $error, 0);
        } else {
            show_msg('database_connect_error', $error, 0);
        }
    } else {
        if ($query = (($mysqlmode == 'mysql') ? @mysql_query("SHOW TABLES FROM $dbname") : $link->query("SHOW TABLES FROM $dbname"))) {
            if (!$query) {
                return false;
            }
            while ($row = (($mysqlmode == 'mysql') ? mysql_fetch_row($query) : $query->fetch_row())) {
                if (preg_match("/^$tablepre/", $row[0])) {
                    return false;
                }
            }
        }
    }
    return true;
}

function dirfile_check(&$dirfile_items) {
    foreach ($dirfile_items as $key => $item) {
        $item_path = $item['path'];
        if ($item['type'] == 'dir') {
            if (!dir_writeable(ROOT_PATH . $item_path)) {
                if (is_dir(ROOT_PATH . $item_path)) {
                    $dirfile_items[$key]['status'] = 0;
                    $dirfile_items[$key]['current'] = '+r';
                } else {
                    $dirfile_items[$key]['status'] = -1;
                    $dirfile_items[$key]['current'] = 'nodir';
                }
            } else {
                $dirfile_items[$key]['status'] = 1;
                $dirfile_items[$key]['current'] = '+r+w';
            }
        } else {
            if (file_exists(ROOT_PATH . $item_path)) {
                if (is_writable(ROOT_PATH . $item_path)) {
                    $dirfile_items[$key]['status'] = 1;
                    $dirfile_items[$key]['current'] = '+r+w';
                } else {
                    $dirfile_items[$key]['status'] = 0;
                    $dirfile_items[$key]['current'] = '+r';
                }
            } else {
                if (dir_writeable(dirname(ROOT_PATH . $item_path))) {
                    $dirfile_items[$key]['status'] = 1;
                    $dirfile_items[$key]['current'] = '+r+w';
                } else {
                    $dirfile_items[$key]['status'] = -1;
                    $dirfile_items[$key]['current'] = 'nofile';
                }
            }
        }
    }
}

function env_check(&$env_items) {
    foreach ($env_items as $key => $item) {
        if ($key == 'php') {
            $env_items[$key]['current'] = PHP_VERSION;
        } elseif ($key == 'attachmentupload') {
            $env_items[$key]['current'] = @ini_get('file_uploads') ? ini_get('upload_max_filesize') : 'unknow';
        } elseif ($key == 'gdversion') {
            $tmp = function_exists('gd_info') ? gd_info() : array();
            $env_items[$key]['current'] = empty($tmp['GD Version']) ? 'noext' : $tmp['GD Version'];
            unset($tmp);
        } elseif ($key == 'diskspace') {
            if (function_exists('disk_free_space')) {
                $env_items[$key]['current'] = floor(disk_free_space(ROOT_PATH) / (1024 * 1024)) . 'M';
            } else {
                $env_items[$key]['current'] = 'unknow';
            }
        } elseif (isset($item['c'])) {
            $env_items[$key]['current'] = constant($item['c']);
        }

        $env_items[$key]['status'] = 1;
        if ($item['r'] != 'notset' && strcmp($env_items[$key]['current'], $item['r']) < 0) {
            $env_items[$key]['status'] = 0;
        }
    }
}

function function_check(&$func_items) {
    foreach ($func_items as $item) {
        function_exists($item) or show_msg('undefine_func', $item, 0);
    }
}

function show_env_result(&$env_items, &$dirfile_items, &$func_items, &$filesock_items) {

    $env_str = $file_str = $dir_str = $func_str = '';
    $error_code = 0;

    foreach ($env_items as $key => $item) {
        if ($key == 'php' && strcmp($item['current'], $item['r']) < 0) {
            show_msg('php_version_too_low', $item['current'], 0);
        }
        $status = 1;
        if ($item['r'] != 'notset') {
            if (intval($item['current']) && intval($item['r'])) {
                if (intval($item['current']) < intval($item['r'])) {
                    $status = 0;
                    $error_code = ENV_CHECK_ERROR;
                }
            } else {
                if (strcmp($item['current'], $item['r']) < 0) {
                    $status = 0;
                    $error_code = ENV_CHECK_ERROR;
                }
            }
        }
        if (VIEW_OFF) {
            $env_str .= "\t\t<runCondition name=\"$key\" status=\"$status\" Require=\"$item[r]\" Best=\"$item[b]\" Current=\"$item[current]\"/>\n";
        } else {
            $env_str .= "<tr>\n";
            $env_str .= "<td>" . lang($key) . "</td>\n";
            $env_str .= "<td class=\"padleft\">" . lang($item['r']) . "</td>\n";
            $env_str .= "<td class=\"padleft\">" . lang($item['b']) . "</td>\n";
            $env_str .= ($status ? "<td class=\"w pdleft1\">" : "<td class=\"nw pdleft1\">") . $item['current'] . "</td>\n";
            $env_str .= "</tr>\n";
        }
    }

    foreach ($dirfile_items as $key => $item) {
        $tagname = $item['type'] == 'file' ? 'File' : 'Dir';
        $variable = $item['type'] . '_str';

        if (VIEW_OFF) {
            if ($item['status'] == 0) {
                $error_code = ENV_CHECK_ERROR;
            }
            $$variable .= "\t\t\t<File name=\"$item[path]\" status=\"$item[status]\" requirePermisson=\"+r+w\" currentPermisson=\"$item[current]\" />\n";
        } else {
            $$variable .= "<tr>\n";
            $$variable .= "<td>$item[path]</td><td class=\"w pdleft1\">" . lang('writeable') . "</td>\n";
            if ($item['status'] == 1) {
                $$variable .= "<td class=\"w pdleft1\">" . lang('writeable') . "</td>\n";
            } elseif ($item['status'] == -1) {
                $error_code = ENV_CHECK_ERROR;
                $$variable .= "<td class=\"nw pdleft1\">" . lang('nodir') . "</td>\n";
            } else {
                $error_code = ENV_CHECK_ERROR;
                $$variable .= "<td class=\"nw pdleft1\">" . lang('unwriteable') . "</td>\n";
            }
            $$variable .= "</tr>\n";
        }
    }

    if (VIEW_OFF) {

        $str = "<root>\n";
        $str .= "\t<runConditions>\n";
        $str .= $env_str;
        $str .= "\t</runConditions>\n";
        $str .= "\t<FileDirs>\n";
        $str .= "\t\t<Dirs>\n";
        $str .= $dir_str;
        $str .= "\t\t</Dirs>\n";
        $str .= "\t\t<Files>\n";
        $str .= $file_str;
        $str .= "\t\t</Files>\n";
        $str .= "\t</FileDirs>\n";
        $str .= "\t<error errorCode=\"$error_code\" errorMessage=\"\" />\n";
        $str .= "</root>";
        echo $str;
        exit;
    } else {

        show_header();

        echo "<h2 class=\"title\">" . lang('env_check') . "</h2>\n";
        echo "<table class=\"tb\" style=\"margin:20px 0 20px 55px;\">\n";
        echo "<tr>\n";
        echo "\t<th>" . lang('project') . "</th>\n";
        echo "\t<th class=\"padleft\">" . lang('ucenter_required') . "</th>\n";
        echo "\t<th class=\"padleft\">" . lang('ucenter_best') . "</th>\n";
        echo "\t<th class=\"padleft\">" . lang('curr_server') . "</th>\n";
        echo "</tr>\n";
        echo $env_str;
        echo "</table>\n";

        echo "<h2 class=\"title\">" . lang('priv_check') . "</h2>\n";
        echo "<table class=\"tb\" style=\"margin:20px 0 20px 55px;width:90%;\">\n";
        echo "\t<tr>\n";
        echo "\t<th>" . lang('step1_file') . "</th>\n";
        echo "\t<th class=\"padleft\">" . lang('step1_need_status') . "</th>\n";
        echo "\t<th class=\"padleft\">" . lang('step1_status') . "</th>\n";
        echo "</tr>\n";
        echo $file_str;
        echo $dir_str;
        echo "</table>\n";

        foreach ($func_items as $item) {
            $status = function_exists($item);
            $func_str .= "<tr>\n";
            $func_str .= "<td>$item()</td>\n";
            if ($status) {
                $func_str .= "<td class=\"w pdleft1\">" . lang('supportted') . "</td>\n";
                $func_str .= "<td class=\"padleft\">" . lang('none') . "</td>\n";
            } else {
                $error_code = ENV_CHECK_ERROR;
                $func_str .= "<td class=\"nw pdleft1\">" . lang('unsupportted') . "</td>\n";
                $func_str .= "<td><font color=\"red\">" . lang('advice_' . $item) . "</font></td>\n";
            }
        }
        $func_strextra = '';
        $filesock_disabled = 0;
        foreach ($filesock_items as $item) {
            $status = function_exists($item);
            $func_strextra .= "<tr>\n";
            $func_strextra .= "<td>$item()</td>\n";
            if ($status) {
                $func_strextra .= "<td class=\"w pdleft1\">" . lang('supportted') . "</td>\n";
                $func_strextra .= "<td class=\"padleft\">" . lang('none') . "</td>\n";
                break;
            } else {
                $filesock_disabled++;
                $func_strextra .= "<td class=\"nw pdleft1\">" . lang('unsupportted') . "</td>\n";
                $func_strextra .= "<td><font color=\"red\">" . lang('advice_' . $item) . "</font></td>\n";
            }
        }
        if ($filesock_disabled == count($filesock_items)) {
            $error_code = ENV_CHECK_ERROR;
        }
        echo "<h2 class=\"title\">" . lang('func_depend') . "</h2>\n";
        echo "<table class=\"tb\" style=\"margin:20px 0 20px 55px;width:90%;\">\n";
        echo "<tr>\n";
        echo "\t<th>" . lang('func_name') . "</th>\n";
        echo "\t<th class=\"padleft\">" . lang('check_result') . "</th>\n";
        echo "\t<th class=\"padleft\">" . lang('suggestion') . "</th>\n";
        echo "</tr>\n";
        echo $func_str . $func_strextra;
        echo "</table>\n";

        show_next_step(2, $error_code);

        show_footer();
    }
}

function show_next_step($step, $error_code) {
    global $uchidden;
    echo "<form action=\"index.php\" method=\"post\">\n";
    echo "<input type=\"hidden\" name=\"step\" value=\"$step\" />";
    if (isset($GLOBALS['hidden'])) {
        echo $GLOBALS['hidden'];
    }
    echo "<input type=\"hidden\" name=\"uchidden\" value=\"$uchidden\" />";
    if ($error_code == 0) {
        $nextstep = "<input type=\"button\" onclick=\"history.back();\" value=\"" . lang('old_step') . "\"><input type=\"submit\" value=\"" . lang('new_step') . "\">\n";
    } else {
        $nextstep = "<input type=\"button\" disabled=\"disabled\" value=\"" . lang('not_continue') . "\">\n";
    }
    echo "<div class=\"btnbox marginbot\">" . $nextstep . "</div>\n";
    echo "</form>\n";
}

function show_form(&$form_items, $error_msg) {

    global $step, $uchidden;

    if (empty($form_items) || !is_array($form_items)) {
        return;
    }

    show_header();
    show_setting('start');
    show_setting('hidden', 'step', $step);
    show_setting('hidden', 'install_ucenter', getgpc('install_ucenter'));
    if ($step == 2) {
        show_tips('install_dzfull');
        show_tips('install_dzonly');
    }
    $is_first = 1;
    if (!empty($uchidden)) {
        $uc_info_transfer = unserialize(urldecode($uchidden));
    }
    echo '<div id="form_items_' . $step . '" ' . ($step == 2 && !getgpc('install_ucenter') ? 'style="display:none"' : '') . '><br />';
    foreach ($form_items as $key => $items) {
        global ${'error_' . $key};
        if ($is_first == 0) {
            echo '</table>';
        }

        if (!${'error_' . $key}) {
            show_tips('tips_' . $key);
        } else {
            show_error('tips_admin_config', ${'error_' . $key});
        }

        echo '<table class="tb2">';
        foreach ($items as $k => $v) {
            $value = '';
            if (!empty($error_msg)) {
                $value = isset($_POST[$key][$k]) ? $_POST[$key][$k] : '';
            }
            if (empty($value)) {
                if (isset($v['value']) && is_array($v['value'])) {
                    if ($v['value']['type'] == 'constant') {
                        $value = defined($v['value']['var']) ? constant($v['value']['var']) : $v['value']['var'];
                    } else {
                        $value = $GLOBALS[$v['value']['var']];
                    }
                } else {
                    $value = '';
                }
            }

            if ($k == 'ucurl' && isset($uc_info_transfer['ucapi'])) {
                $value = $uc_info_transfer['ucapi'];
            } elseif ($k == 'ucpw' && isset($uc_info_transfer['ucfounderpw'])) {
                $value = $uc_info_transfer['ucfounderpw'];
            } elseif ($k == 'ucip') {
                $value = '';
            }

            show_setting($k, $key . '[' . $k . ']', $value, $v['type'], isset($error_msg[$key][$k]) ? $key . '_' . $k . '_invalid' : '');
        }

        if ($is_first) {
            $is_first = 0;
        }
    }
    echo '</table>';
    echo '</div>';
    echo '<table class="tb2">';
    show_setting('', 'submitname', 'new_step', ($step == 2 ? 'submit|oldbtn' : 'submit'));
    show_setting('end');
    show_footer();
}

function show_license() {
    global $self, $uchidden, $step;
    $next = $step + 1;
    if (VIEW_OFF) {

        show_msg('license_contents', lang('license'), 1);
    } else {

        show_header();

        $license = str_replace('  ', '&nbsp; ', lang('license'));
        $lang_agreement_yes = lang('agreement_yes');
        $lang_agreement_no = lang('agreement_no');
        echo <<<EOT
</div>
<div class="main" style="margin-top:-123px;">
	<div class="licenseblock">$license</div>
	<div class="btnbox marginbot">
		<form method="get" autocomplete="off" action="index.php">
		<input type="hidden" name="step" value="$next">
		<input type="hidden" name="uchidden" value="$uchidden">
		<input type="submit" name="submit" value="{$lang_agreement_yes}" style="padding: 2px">&nbsp;
		<input type="button" name="exit" value="{$lang_agreement_no}" style="padding: 2px" onclick="javascript: window.close(); return false;">
		</form>
	</div>
EOT;

        show_footer();
    }
}

function transfer_ucinfo(&$post) {
    global $uchidden;
    if (isset($post['ucapi']) && isset($post['ucfounderpw'])) {
        $arr = array(
            'ucapi' => $post['ucapi'],
            'ucfounderpw' => $post['ucfounderpw']
        );
        $uchidden = urlencode(serialize($arr));
    } else {
        $uchidden = '';
    }
}

if (!function_exists('file_put_contents')) {

    function file_put_contents($filename, $s) {
        $fp = @fopen($filename, 'w');
        @fwrite($fp, $s);
        @fclose($fp);
        return TRUE;
    }

}

function createtable($sql, $dbver) {

    $type = strtoupper(preg_replace("/^\s*CREATE TABLE\s+.+\s+\(.+?\).*(ENGINE|TYPE)\s*=\s*([a-z]+?).*$/isU", "\\2", $sql));
    $type = in_array($type, array('MYISAM', 'HEAP', 'MEMORY')) ? $type : 'MYISAM';
    return preg_replace("/^\s*(CREATE TABLE\s+.+\s+\(.+?\)).*$/isU", "\\1", $sql) .
            ($dbver > '4.1' ? " ENGINE=$type DEFAULT CHARSET=" . DBCHARSET : " TYPE=$type");
}

function dir_writeable($dir) {
    $writeable = 0;
    if (!is_dir($dir)) {
        @mkdir($dir, 0777);
    }
    if (is_dir($dir)) {
        if ($fp = @fopen("$dir/test.txt", 'w')) {
            @fclose($fp);
            @unlink("$dir/test.txt");
            $writeable = 1;
        } else {
            $writeable = 0;
        }
    }
    return $writeable;
}

function dir_clear($dir) {
    global $lang;
    showjsmessage($lang['clear_dir'] . ' ' . str_replace(ROOT_PATH, '', $dir));
    if ($directory = @dir($dir)) {
        while ($entry = $directory->read()) {
            $filename = $dir . '/' . $entry;
            if (is_file($filename)) {
                @unlink($filename);
            }
        }
        $directory->close();
        @touch($dir . '/index.htm');
    }
}

function show_header() {
    define('SHOW_HEADER', TRUE);
    global $step;
    $version = DISCUZ_VERSION;
    $release = DISCUZ_RELEASE;
    $install_lang = lang(INSTALL_LANG);
    $title = lang('title_install');
    $charset = CHARSET;
    echo <<<EOT
<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml">
<head>
<meta http-equiv="Content-Type" content="text/html; charset=$charset" />
<title>$title</title>
<link rel="stylesheet" href="images/style.css" type="text/css" media="all" />
<script type="text/javascript">
	function $(id) {
		return document.getElementById(id);
	}

	function showmessage(message) {
		document.getElementById('notice').innerHTML += message + '<br />';
	}
</script>
<meta content="Comsenz Inc." name="Copyright" />
</head>
<div class="container">
	<div class="header">
		<h1>$title</h1>
		<span>Discuz!$version $install_lang $release</span>
EOT;

    $step > 0 && show_step($step);
}

function show_footer($quit = true) {

    echo <<<EOT
		<div class="footer">&copy;2001 - 2013 <a href="http://www.comsenz.com/">Comsenz</a> Inc.</div>
	</div>
</div>
</body>
</html>
EOT;
    $quit && exit();
}

function loginit($logfile) {
    global $lang;
    showjsmessage($lang['init_log'] . ' ' . $logfile);
    if ($fp = @fopen('./forumdata/logs/' . $logfile . '.php', 'w')) {
        fwrite($fp, '<' . '?PHP exit(); ?' . ">\n");
        fclose($fp);
    }
}

function showjsmessage($message) {
    if (VIEW_OFF)
        return;
    echo '<script type="text/javascript">showmessage(\'' . addslashes($message) . ' \');</script>' . "\r\n";
    flush();
    ob_flush();
}

function random($length) {
    $hash = '';
    $chars = 'ABCDEFGHIJKLMNOPQRSTUVWXYZ0123456789abcdefghijklmnopqrstuvwxyz';
    $max = strlen($chars) - 1;
    PHP_VERSION < '4.2.0' && mt_srand((double) microtime() * 1000000);
    for ($i = 0; $i < $length; $i++) {
        $hash .= $chars[mt_rand(0, $max)];
    }
    return $hash;
}

function redirect($url) {

    echo "<script>" .
    "function redirect() {window.location.replace('$url');}\n" .
    "setTimeout('redirect();', 0);\n" .
    "</script>";
    exit();
}

function get_onlineip() {
    $onlineip = '';
    if (getenv('HTTP_CLIENT_IP') && strcasecmp(getenv('HTTP_CLIENT_IP'), 'unknown')) {
        $onlineip = getenv('HTTP_CLIENT_IP');
    } elseif (getenv('HTTP_X_FORWARDED_FOR') && strcasecmp(getenv('HTTP_X_FORWARDED_FOR'), 'unknown')) {
        $onlineip = getenv('HTTP_X_FORWARDED_FOR');
    } elseif (getenv('REMOTE_ADDR') && strcasecmp(getenv('REMOTE_ADDR'), 'unknown')) {
        $onlineip = getenv('REMOTE_ADDR');
    } elseif (isset($_SERVER['REMOTE_ADDR']) && $_SERVER['REMOTE_ADDR'] && strcasecmp($_SERVER['REMOTE_ADDR'], 'unknown')) {
        $onlineip = $_SERVER['REMOTE_ADDR'];
    }
    return $onlineip;
}

function timezone_set($timeoffset = 8) {
    if (function_exists('date_default_timezone_set')) {
        @date_default_timezone_set('Etc/GMT' . ($timeoffset > 0 ? '-' : '+') . (abs($timeoffset)));
    }
}

function save_config_file($filename, $config, $default) {
    $config = setdefault($config, $default);
    $date = gmdate("Y-m-d H:i:s", time() + 3600 * 8);
    $content = <<<EOT
<?php


\$_config = array();

EOT;
    $content .= getvars(array('_config' => $config));
    $content .= "\r\n// " . str_pad('  THE END  ', 50, '-', STR_PAD_BOTH) . " //\r\n\r\n?>";
    file_put_contents($filename, $content);
}

function setdefault($var, $default) {
    foreach ($default as $k => $v) {
        if (!isset($var[$k])) {
            $var[$k] = $default[$k];
        } elseif (is_array($v)) {
            $var[$k] = setdefault($var[$k], $default[$k]);
        }
    }
    return $var;
}

function authcode($string, $operation = 'DECODE', $key = '', $expiry = 0) {

    $ckey_length = 4;

    $key = md5($key ? $key : UC_KEY);
    $keya = md5(substr($key, 0, 16));
    $keyb = md5(substr($key, 16, 16));
    $keyc = $ckey_length ? ($operation == 'DECODE' ? substr($string, 0, $ckey_length) : substr(md5(microtime()), -$ckey_length)) : '';

    $cryptkey = $keya . md5($keya . $keyc);
    $key_length = strlen($cryptkey);

    $string = $operation == 'DECODE' ? base64_decode(substr($string, $ckey_length)) : sprintf('%010d', $expiry ? $expiry + time() : 0) . substr(md5($string . $keyb), 0, 16) . $string;
    $string_length = strlen($string);

    $result = '';
    $box = range(0, 255);

    $rndkey = array();
    for ($i = 0; $i <= 255; $i++) {
        $rndkey[$i] = ord($cryptkey[$i % $key_length]);
    }

    for ($j = $i = 0; $i < 256; $i++) {
        $j = ($j + $box[$i] + $rndkey[$i]) % 256;
        $tmp = $box[$i];
        $box[$i] = $box[$j];
        $box[$j] = $tmp;
    }

    for ($a = $j = $i = 0; $i < $string_length; $i++) {
        $a = ($a + 1) % 256;
        $j = ($j + $box[$a]) % 256;
        $tmp = $box[$a];
        $box[$a] = $box[$j];
        $box[$j] = $tmp;
        $result .= chr(ord($string[$i]) ^ ($box[($box[$a] + $box[$j]) % 256]));
    }

    if ($operation == 'DECODE') {
        if ((substr($result, 0, 10) == 0 || substr($result, 0, 10) - time() > 0) && substr($result, 10, 16) == substr(md5(substr($result, 26) . $keyb), 0, 16)) {
            return substr($result, 26);
        } else {
            return '';
        }
    } else {
        return $keyc . str_replace('=', '', base64_encode($result));
    }
}

function generate_key() {
    $random = random(32);
    $info = md5($_SERVER['SERVER_SOFTWARE'] . $_SERVER['SERVER_NAME'] . $_SERVER['SERVER_ADDR'] . $_SERVER['SERVER_PORT'] . $_SERVER['HTTP_USER_AGENT'] . time());
    $return = '';
    for ($i = 0; $i < 64; $i++) {
        $p = intval($i / 2);
        $return[$i] = $i % 2 ? $random[$p] : $info[$p];
    }
    return implode('', $return);
}

function show_install() {
    if (VIEW_OFF)
        return;
    ?>
    <script type="text/javascript">
        function showmessage(message) {
            document.getElementById('notice').innerHTML += message + '<br />';
            document.getElementById('notice').scrollTop = 100000000;
        }
        function initinput() {
            window.location = 'index.php?method=ext_info';
        }
    </script>
    <div id="notice"></div>
    <div class="btnbox margintop marginbot">
        <input type="button" name="submit" value="<?php echo lang('install_in_processed'); ?>" disabled="disabled" id="laststep" onclick="initinput()">
    </div>
    <?php
}

function runquery($sql) {
    global $lang, $tablepre, $db;

    if (!isset($sql) || empty($sql))
        return;

    $sql = str_replace("\r", "\n", str_replace(' ' . ORIG_TABLEPRE, ' ' . $tablepre, $sql));
    $sql = str_replace("\r", "\n", str_replace(' `' . ORIG_TABLEPRE, ' `' . $tablepre, $sql));
    $ret = array();
    $num = 0;
    foreach (explode(";\n", trim($sql)) as $query) {
        $ret[$num] = '';
        $queries = explode("\n", trim($query));
        foreach ($queries as $query) {
            $ret[$num] .= (isset($query[0]) && $query[0] == '#') || (isset($query[1]) && isset($query[1]) && $query[0] . $query[1] == '--') ? '' : $query;
        }
        $num++;
    }
    unset($sql);

    foreach ($ret as $query) {
        $query = trim($query);
        if ($query) {

            if (substr($query, 0, 12) == 'CREATE TABLE') {
                $name = preg_replace("/CREATE TABLE ([a-z0-9_]+) .*/is", "\\1", $query);
                showjsmessage(lang('create_table') . ' ' . $name . ' ... ' . lang('succeed'));
                $db->query(createtable($query, $db->version()));
            } else {
                $db->query($query);
            }
        }
    }
}

function runucquery($sql, $tablepre) {
    global $lang, $db;

    if (!isset($sql) || empty($sql))
        return;

    $sql = str_replace("\r", "\n", str_replace(' uc_', ' ' . $tablepre, $sql));
    $ret = array();
    $num = 0;
    foreach (explode(";\n", trim($sql)) as $query) {
        $ret[$num] = '';
        $queries = explode("\n", trim($query));
        foreach ($queries as $query) {
            $ret[$num] .= (isset($query[0]) && $query[0] == '#') || (isset($query[1]) && isset($query[1]) && $query[0] . $query[1] == '--') ? '' : $query;
        }
        $num++;
    }
    unset($sql);

    foreach ($ret as $query) {
        $query = trim($query);
        if ($query) {

            if (substr($query, 0, 12) == 'CREATE TABLE') {
                $name = preg_replace("/CREATE TABLE ([a-z0-9_]+) .*/is", "\\1", $query);
                showjsmessage(lang('create_table') . ' ' . $name . ' ... ' . lang('succeed'));
                $db->query(createtable($query, $db->version()));
            } else {
                $db->query($query);
            }
        }
    }
}

function charcovert($string) {
    if (!get_magic_quotes_gpc()) {
        $string = str_replace('\'', '\\\'', $string);
    } else {
        $string = str_replace('\"', '"', $string);
    }
    return $string;
}

function insertconfig($s, $find, $replace) {
    if (preg_match($find, $s)) {
        $s = preg_replace($find, $replace, $s);
    } else {
        $s .= "\r\n" . $replace;
    }
    return $s;
}

function getgpc($k, $t = 'GP') {
    $t = strtoupper($t);
    switch ($t) {
        case 'GP' : isset($_POST[$k]) ? $var = &$_POST : $var = &$_GET;
            break;
        case 'G': $var = &$_GET;
            break;
        case 'P': $var = &$_POST;
            break;
        case 'C': $var = &$_COOKIE;
            break;
        case 'R': $var = &$_REQUEST;
            break;
    }
    return isset($var[$k]) ? $var[$k] : null;
}

function var_to_hidden($k, $v) {
    return "<input type=\"hidden\" name=\"$k\" value=\"$v\" />\n";
}

function fsocketopen($hostname, $port = 80, &$errno, &$errstr, $timeout = 15) {
    $fp = '';
    if (function_exists('fsockopen')) {
        $fp = @fsockopen($hostname, $port, $errno, $errstr, $timeout);
    } elseif (function_exists('pfsockopen')) {
        $fp = @pfsockopen($hostname, $port, $errno, $errstr, $timeout);
    } elseif (function_exists('stream_socket_client')) {
        $fp = @stream_socket_client($hostname . ':' . $port, $errno, $errstr, $timeout);
    }
    return $fp;
}

function dfopen($url, $limit = 0, $post = '', $cookie = '', $bysocket = FALSE, $ip = '', $timeout = 15, $block = TRUE, $encodetype = 'URLENCODE', $allowcurl = TRUE) {
    $return = '';
    $matches = parse_url($url);
    $scheme = $matches['scheme'];
    $host = $matches['host'];
    $path = $matches['path'] ? $matches['path'] . ($matches['query'] ? '?' . $matches['query'] : '') : '/';
    $port = !empty($matches['port']) ? $matches['port'] : 80;

    if (function_exists('curl_init') && $allowcurl) {
        $ch = curl_init();
        $ip && curl_setopt($ch, CURLOPT_HTTPHEADER, array("Host: " . $host));
        curl_setopt($ch, CURLOPT_URL, $scheme . '://' . ($ip ? $ip : $host) . ':' . $port . $path);
        curl_setopt($ch, CURLOPT_RETURNTRANSFER, 1);
        if ($post) {
            curl_setopt($ch, CURLOPT_POST, 1);
            if ($encodetype == 'URLENCODE') {
                curl_setopt($ch, CURLOPT_POSTFIELDS, $post);
            } else {
                parse_str($post, $postarray);
                curl_setopt($ch, CURLOPT_POSTFIELDS, $postarray);
            }
        }
        if ($cookie) {
            curl_setopt($ch, CURLOPT_COOKIE, $cookie);
        }
        curl_setopt($ch, CURLOPT_CONNECTTIMEOUT, $timeout);
        $data = curl_exec($ch);
        $status = curl_getinfo($ch);
        $errno = curl_errno($ch);
        curl_close($ch);
        if ($errno || $status['http_code'] != 200) {
            return;
        } else {
            return !$limit ? $data : substr($data, 0, $limit);
        }
    }

    if ($post) {
        $out = "POST $path HTTP/1.0\r\n";
        $header = "Accept: */*\r\n";
        $header .= "Accept-Language: zh-cn\r\n";
        $boundary = $encodetype == 'URLENCODE' ? '' : '; boundary=' . trim(substr(trim($post), 2, strpos(trim($post), "\n") - 2));
        $header .= $encodetype == 'URLENCODE' ? "Content-Type: application/x-www-form-urlencoded\r\n" : "Content-Type: multipart/form-data$boundary\r\n";
        $header .= "User-Agent: $_SERVER[HTTP_USER_AGENT]\r\n";
        $header .= "Host: $host:$port\r\n";
        $header .= 'Content-Length: ' . strlen($post) . "\r\n";
        $header .= "Connection: Close\r\n";
        $header .= "Cache-Control: no-cache\r\n";
        $header .= "Cookie: $cookie\r\n\r\n";
        $out .= $header . $post;
    } else {
        $out = "GET $path HTTP/1.0\r\n";
        $header = "Accept: */*\r\n";
        $header .= "Accept-Language: zh-cn\r\n";
        $header .= "User-Agent: $_SERVER[HTTP_USER_AGENT]\r\n";
        $header .= "Host: $host:$port\r\n";
        $header .= "Connection: Close\r\n";
        $header .= "Cookie: $cookie\r\n\r\n";
        $out .= $header;
    }

    $fpflag = 0;
    if (!$fp = @fsocketopen(($ip ? $ip : $host), $port, $errno, $errstr, $timeout)) {
        $context = array(
            'http' => array(
                'method' => $post ? 'POST' : 'GET',
                'header' => $header,
                'content' => $post,
                'timeout' => $timeout,
            ),
        );
        $context = stream_context_create($context);
        $fp = @fopen($scheme . '://' . ($ip ? $ip : $host) . ':' . $port . $path, 'b', false, $context);
        $fpflag = 1;
    }

    if (!$fp) {
        return '';
    } else {
        stream_set_blocking($fp, $block);
        stream_set_timeout($fp, $timeout);
        @fwrite($fp, $out);
        $status = stream_get_meta_data($fp);
        if (!$status['timed_out']) {
            while (!feof($fp) && !$fpflag) {
                if (($header = @fgets($fp)) && ($header == "\r\n" || $header == "\n")) {
                    break;
                }
            }

            $stop = false;
            while (!feof($fp) && !$stop) {
                $data = fread($fp, ($limit == 0 || $limit > 8192 ? 8192 : $limit));
                $return .= $data;
                if ($limit) {
                    $limit -= strlen($data);
                    $stop = $limit <= 0;
                }
            }
        }
        @fclose($fp);
        return $return;
    }
}

function check_env() {

    global $lang, $attachdir;

    $errors = array('quit' => false);
    $quit = false;

    if (!function_exists('mysql_connect') && !function_exists('mysqli_connect')) {
        $errors[] = 'mysql_unsupport';
        $quit = true;
    }

    if (PHP_VERSION < '4.3') {
        $errors[] = 'php_version_430';
        $quit = true;
    }

    if (!file_exists(ROOT_PATH . './config.inc.php')) {
        $errors[] = 'config_nonexistence';
        $quit = true;
    } elseif (!is_writeable(ROOT_PATH . './config.inc.php')) {
        $errors[] = 'config_unwriteable';
        $quit = true;
    }

    $checkdirarray = array(
        'attach' => $attachdir,
        'forumdata' => './forumdata',
        'cache' => './forumdata/cache',
        'ftemplates' => './forumdata/templates',
        'threadcache' => './forumdata/threadcaches',
        'log' => './forumdata/logs',
        'uccache' => './uc_client/data/cache'
    );

    foreach ($checkdirarray as $key => $dir) {
        if (!dir_writeable(ROOT_PATH . $dir)) {
            $langkey = $key . '_unwriteable';
            $errors[] = $key . '_unwriteable';
            if (!in_array($key, array('ftemplate'))) {
                $quit = TRUE;
            }
        }
    }

    $errors['quit'] = $quit;
    return $errors;
}

function show_error($type, $errors = '', $quit = false) {

    global $lang, $step;

    $title = lang($type);
    $comment = lang($type . '_comment', false);
    $errormsg = '';
    if ($errors) {
        if (!empty($errors)) {
            foreach ((array) $errors as $k => $v) {
                if (is_numeric($k)) {
                    $comment .= "<li><em class=\"red\">" . lang($v) . "</em></li>";
                }
            }
        }
    }

    if ($step > 0) {
        echo "<div class=\"desc\"><b>$title</b><ul>$comment</ul>";
    } else {
        echo "</div><div class=\"main\" style=\"margin-top: -123px;\"><b>$title</b><ul style=\"line-height: 200%; margin-left: 30px;\">$comment</ul>";
    }

    if ($quit) {
        echo '<br /><span class="red">' . $lang['error_quit_msg'] . '</span><br /><br /><br /><br /><br /><br />';
    }

    echo '</div>';

    $quit && show_footer();
}

function show_tips($tip, $title = '', $comment = '', $style = 1) {
    global $lang;
    $title = empty($title) ? lang($tip) : $title;
    $comment = empty($comment) ? lang($tip . '_comment', FALSE) : $comment;
    if ($style) {
        echo "<div class=\"desc\"><b>$title</b>";
    } else {
        echo "</div><div class=\"main\" style=\"margin-top: -123px;\">$title<div class=\"desc1 marginbot\"><ul>";
    }
    $comment && print('<br>' . $comment);
    echo "</div>";
}

function show_setting($setname, $varname = '', $value = '', $type = 'text|password|checkbox', $error = '') {
    if ($setname == 'start') {
        echo "<form method=\"post\" action=\"index.php\">\n";
        return;
    } elseif ($setname == 'end') {
        echo "\n</table>\n</form>\n";
        return;
    } elseif ($setname == 'hidden') {
        echo "<input type=\"hidden\" name=\"$varname\" value=\"$value\">\n";
        return;
    }

    echo "\n" . '<tr><th class="tbopt' . ($error ? ' red' : '') . '" align="left">&nbsp;' . (empty($setname) ? '' : lang($setname) . ':') . "</th>\n<td>";
    if ($type == 'text' || $type == 'password') {
        $value = dhtmlspecialchars($value);
        echo "<input type=\"$type\" name=\"$varname\" value=\"$value\" size=\"35\" class=\"txt\">";
    } elseif (strpos($type, 'submit') !== FALSE) {
        if (strpos($type, 'oldbtn') !== FALSE) {
            echo "<input type=\"button\" name=\"oldbtn\" value=\"" . lang('old_step') . "\" class=\"btn\" onclick=\"history.back();\">\n";
        }
        $value = empty($value) ? 'next_step' : $value;
        echo "<input type=\"submit\" name=\"$varname\" value=\"" . lang($value) . "\" class=\"btn\">\n";
    } elseif ($type == 'checkbox') {
        if (!is_array($varname) && !is_array($value)) {
            echo "<label><input type=\"checkbox\" name=\"$varname\" value=\"1\"" . ($value ? 'checked="checked"' : '') . "style=\"border: 0\">" . lang($setname . '_check_label') . "</label>\n";
        }
    } else {
        echo $value;
    }

    echo "</td>\n<td>";
    if ($error) {
        $comment = '<span class="red">' . (is_string($error) ? lang($error) : lang($setname . '_error')) . '</span>';
    } else {
        $comment = lang($setname . '_comment', false);
    }
    echo "$comment</td>\n</tr>\n";
    return true;
}

function show_step($step) {

    global $method;

    $laststep = 4;
    $title = lang('step_' . $method . '_title');
    $comment = lang('step_' . $method . '_desc');
    $step_title_1 = lang('step_title_1');
    $step_title_2 = lang('step_title_2');
    $step_title_3 = lang('step_title_3');
    $step_title_4 = lang('step_title_4');

    $stepclass = array();
    for ($i = 1; $i <= $laststep; $i++) {
        $stepclass[$i] = $i == $step ? 'current' : ($i < $step ? '' : 'unactivated');
    }
    $stepclass[$laststep] .= ' last';

    echo <<<EOT
	<div class="setup step{$step}">
		<h2>$title</h2>
		<p>$comment</p>
	</div>
	<div class="stepstat">
		<ul>
			<li class="$stepclass[1]">$step_title_1</li>
			<li class="$stepclass[2]">$step_title_2</li>
			<li class="$stepclass[3]">$step_title_3</li>
			<li class="$stepclass[4]">$step_title_4</li>
		</ul>
		<div class="stepstatbg stepstat1"></div>
	</div>
</div>
<div class="main">
EOT;
}

function lang($lang_key, $force = true) {
    return isset($GLOBALS['lang'][$lang_key]) ? $GLOBALS['lang'][$lang_key] : ($force ? $lang_key : '');
}

function check_adminuser($username, $password, $email) {

    include ROOT_PATH . CONFIG_UC;
    include ROOT_PATH . './uc_client/client.php';

    $error = '';
    $ucresult = uc_user_login($username, $password);
    if ($ucresult['uid'] <= 0) {
        $uid = uc_user_register($username, $password, $email);
        if ($uid == -1 || $uid == -2) {
            $error = 'admin_username_invalid';
        } elseif ($uid == -4 || $uid == -5 || $uid == -6) {
            $error = 'admin_email_invalid';
        } elseif ($uid == -3) {
            $error = 'admin_exist_password_error';
        }
    } else {
        $uid = $ucresult['uid'];
        $email = $ucresult['email'];
        $password = $ucresult['password'];
    }

    if (!$error && $uid > 0) {
        $password = md5($password);
        uc_user_addprotected($username, '');
    } else {
        $uid = 0;
        $error = empty($error) ? 'error_unknow_type' : $error;
    }
    return array('uid' => $uid, 'username' => $username, 'password' => $password, 'email' => $email, 'error' => $error);
}

function save_uc_config($config, $file) {

    $success = false;

    list($appauthkey, $appid, $ucdbhost, $ucdbname, $ucdbuser, $ucdbpw, $ucdbcharset, $uctablepre, $uccharset, $ucapi, $ucip) = $config;

    $link = function_exists('mysql_connect') ? mysql_connect($ucdbhost, $ucdbuser, $ucdbpw, 1) : new mysqli($ucdbhost, $ucdbuser, $ucdbpw, $ucdbname);
    $uc_connnect = $link ? 'mysql' : '';

    $date = gmdate("Y-m-d H:i:s", time() + 3600 * 8);
    $year = date('Y');
    $config = <<<EOT
<?php


define('UC_CONNECT', '$uc_connnect');

define('UC_DBHOST', '$ucdbhost');
define('UC_DBUSER', '$ucdbuser');
define('UC_DBPW', '$ucdbpw');
define('UC_DBNAME', '$ucdbname');
define('UC_DBCHARSET', '$ucdbcharset');
define('UC_DBTABLEPRE', '`$ucdbname`.$uctablepre');
define('UC_DBCONNECT', 0);

define('UC_CHARSET', '$uccharset');
define('UC_KEY', '$appauthkey');
define('UC_API', '$ucapi');
define('UC_APPID', '$appid');
define('UC_IP', '$ucip');
define('UC_PPP', 20);
?>
EOT;

    if ($fp = fopen($file, 'w')) {
        fwrite($fp, $config);
        fclose($fp);
        $success = true;
    }
    return $success;
}

function _generate_key() {
    $random = random(32);
    $info = md5($_SERVER['SERVER_SOFTWARE'] . $_SERVER['SERVER_NAME'] . $_SERVER['SERVER_ADDR'] . $_SERVER['SERVER_PORT'] . $_SERVER['HTTP_USER_AGENT'] . time());
    $return = array();
    for ($i = 0; $i < 32; $i++) {
        $return[$i] = $random[$i] . $info[$i];
    }
    return implode('', $return);
}

function uc_write_config($config, $file, $password) {
    list($appauthkey, $appid, $ucdbhost, $ucdbname, $ucdbuser, $ucdbpw, $ucdbcharset, $uctablepre, $uccharset, $ucapi, $ucip) = $config;
    $ucauthkey = _generate_key();
    $ucsiteid = _generate_key();
    $ucmykey = _generate_key();
    $salt = substr(_generate_key(), 0, 6);
    $pw = md5(md5($password) . $salt);
    $config = "<?php \r\ndefine('UC_DBHOST', '$ucdbhost');\r\n";
    $config .= "define('UC_DBUSER', '$ucdbuser');\r\n";
    $config .= "define('UC_DBPW', '$ucdbpw');\r\n";
    $config .= "define('UC_DBNAME', '$ucdbname');\r\n";
    $config .= "define('UC_DBCHARSET', '$ucdbcharset');\r\n";
    $config .= "define('UC_DBTABLEPRE', '$uctablepre');\r\n";
    $config .= "define('UC_COOKIEPATH', '/');\r\n";
    $config .= "define('UC_COOKIEDOMAIN', '');\r\n";
    $config .= "define('UC_DBCONNECT', 0);\r\n";
    $config .= "define('UC_CHARSET', '" . $uccharset . "');\r\n";
    $config .= "define('UC_FOUNDERPW', '$pw');\r\n";
    $config .= "define('UC_FOUNDERSALT', '$salt');\r\n";
    $config .= "define('UC_KEY', '$ucauthkey');\r\n";
    $config .= "define('UC_SITEID', '$ucsiteid');\r\n";
    $config .= "define('UC_MYKEY', '$ucmykey');\r\n";
    $config .= "define('UC_DEBUG', false);\r\n";
    $config .= "define('UC_PPP', 20);\r\n";
    $fp = fopen($file, 'w');
    fwrite($fp, $config);
    fclose($fp);
}

function install_uc_server() {
    global $db, $dbhost, $dbuser, $dbpw, $dbname, $tablepre, $username, $password, $email;

    $ucsql = file_get_contents(ROOT_PATH . './uc_server/install/uc.sql');
    $uctablepre = $tablepre . 'ucenter_';
    $ucsql = str_replace(' uc_', ' ' . $uctablepre, $ucsql);
    $ucsql && runucquery($ucsql, $uctablepre);
    $appauthkey = _generate_key();
    $ucdbhost = $dbhost;
    $ucdbname = $dbname;
    $ucdbuser = $dbuser;
    $ucdbpw = $dbpw;
    $ucdbcharset = DBCHARSET;

    $uccharset = CHARSET;

    $pathinfo = pathinfo($_SERVER['PHP_SELF']);
    $pathinfo['dirname'] = substr($pathinfo['dirname'], 0, -8);
    $isHTTPS = ($_SERVER['HTTPS'] && strtolower($_SERVER['HTTPS']) != 'off') ? true : false;
    $appurl = 'http' . ($isHTTPS ? 's' : '') . '://' . preg_replace("/\:\d+/", '', $_SERVER['HTTP_HOST']) . ($_SERVER['SERVER_PORT'] && $_SERVER['SERVER_PORT'] != 80 && $_SERVER['SERVER_PORT'] != 443 ? ':' . $_SERVER['SERVER_PORT'] : '') . $pathinfo['dirname'];
    $ucapi = $appurl . '/uc_server';
    $ucip = '';
    $app_tagtemplates = 'apptagtemplates[template]=' . urlencode('<a href="{url}" target="_blank">{subject}</a>') . '&' .
            'apptagtemplates[fields][subject]=' . urlencode($lang['tagtemplates_subject']) . '&' .
            'apptagtemplates[fields][uid]=' . urlencode($lang['tagtemplates_uid']) . '&' .
            'apptagtemplates[fields][username]=' . urlencode($lang['tagtemplates_username']) . '&' .
            'apptagtemplates[fields][dateline]=' . urlencode($lang['tagtemplates_dateline']) . '&' .
            'apptagtemplates[fields][url]=' . urlencode($lang['tagtemplates_url']);

    $db->query("INSERT INTO {$uctablepre}applications SET name='Discuz! Board', url='$appurl', ip='$ucip', authkey='$appauthkey', synlogin='1', charset='$charset', dbcharset='$dbcharset', type='DISCUZX', recvnote='1', tagtemplates='$apptagtemplates'", $link);
    $appid = $db->insert_id($link);
    $db->query("ALTER TABLE {$uctablepre}notelist ADD COLUMN app$appid tinyint NOT NULL");

    $config = array($appauthkey, $appid, $ucdbhost, $ucdbname, $ucdbuser, $ucdbpw, $ucdbcharset, $uctablepre, $uccharset, $ucapi, $ucip);
    save_uc_config($config, ROOT_PATH . './config/config_ucenter.php');

    $salt = substr(uniqid(rand()), -6);
    $passwordmd5 = md5(md5($password) . $salt);
    $db->query("INSERT INTO {$uctablepre}members SET $sqladd username='$username', password='$passwordmd5', email='$email', regip='hidden', regdate='" . time() . "', salt='$salt'");
    $uid = $db->insert_id();
    $db->query("INSERT INTO {$uctablepre}memberfields SET uid='$uid'");

    $db->query("INSERT INTO {$uctablepre}admins SET
		uid='$uid',
		username='$username',
		allowadminsetting='1',
		allowadminapp='1',
		allowadminuser='1',
		allowadminbadword='1',
		allowadmincredits='1',
		allowadmintag='1',
		allowadminpm='1',
		allowadmindomain='1',
		allowadmindb='1',
		allowadminnote='1',
		allowadmincache='1',
		allowadminlog='1'");

    uc_write_config($config, ROOT_PATH . './uc_server/data/config.inc.php', $password);

    @unlink(ROOT_PATH . './uc_server/install/index.php');
    @unlink(ROOT_PATH . './uc_server/data/cache/settings.php');
    @touch(ROOT_PATH . './uc_server/data/upgrade.lock');
    @touch(ROOT_PATH . './uc_server/data/install.lock');
    dir_clear(ROOT_PATH . './uc_server/data/cache');
    dir_clear(ROOT_PATH . './uc_server/data/view');
}

function install_data($username, $uid) {
    global $_G, $db, $tablepre;
    showjsmessage(lang('install_data') . " ... " . lang('succeed'));

    $_G = array('db' => $db, 'tablepre' => $tablepre, 'uid' => $uid, 'username' => $username);

    $arr = array(
        0 => array('importfile' => './data/group_index.xml', 'primaltplname' => 'group/index', 'targettplname' => 'group/index'),
    );
    foreach ($arr as $v) {
        import_diy($v['importfile'], $v['primaltplname'], $v['targettplname']);
    }
}

function install_testdata($username, $uid) {
    global $_G, $db, $tablepre;
    showjsmessage(lang('install_test_data') . " ... " . lang('succeed'));

    $sqlfile = ROOT_PATH . './install/data/common_district_{#id}.sql';
    for ($i = 1; $i < 4; $i++) {
        $sqlfileid = str_replace('{#id}', $i, $sqlfile);
        if (file_exists($sqlfileid)) {
            $sql = file_get_contents($sqlfileid);
            $sql = str_replace("\r\n", "\n", $sql);
            runquery($sql);
        }
    }
}

function getvars($data, $type = 'VAR') {
    $evaluate = '';
    foreach ($data as $key => $val) {
        if (!preg_match("/^[a-zA-Z_\x7f-\xff][a-zA-Z0-9_\x7f-\xff]*$/", $key)) {
            continue;
        }
        if (is_array($val)) {
            $evaluate .= buildarray($val, 0, "\${$key}") . "\r\n";
        } else {
            $val = addcslashes($val, '\'\\');
            $evaluate .= $type == 'VAR' ? "\$$key = '$val';\n" : "define('" . strtoupper($key) . "', '$val');\n";
        }
    }
    return $evaluate;
}

function buildarray($array, $level = 0, $pre = '$_config') {
    static $ks;
    if ($level == 0) {
        $ks = array();
        $return = '';
    }

    foreach ($array as $key => $val) {
        if ($level == 0) {
            $newline = str_pad('  CONFIG ' . strtoupper($key) . '  ', 70, '-', STR_PAD_BOTH);
            $return .= "\r\n// $newline //\r\n";
            if ($key == 'admincp') {
                $newline = str_pad(' Founders: $_config[\'admincp\'][\'founder\'] = \'1,2,3\'; ', 70, '-', STR_PAD_BOTH);
                $return .= "// $newline //\r\n";
            }
        }

        $ks[$level] = $ks[$level - 1] . "['$key']";
        if (is_array($val)) {
            $ks[$level] = $ks[$level - 1] . "['$key']";
            $return .= buildarray($val, $level + 1, $pre);
        } else {
            $val = is_string($val) || strlen($val) > 12 || !preg_match("/^\-?[1-9]\d*$/", $val) ? '\'' . addcslashes($val, '\'\\') . '\'' : $val;
            $return .= $pre . $ks[$level - 1] . "['$key']" . " = $val;\r\n";
        }
    }
    return $return;
}

function save_diy_data($primaltplname, $targettplname, $data, $database = false) {
    global $_G;
    if (empty($data) || !is_array($data))
        return false;

    $_G['curtplbid'] = array();
    $_G['curtplframe'] = array();

    $tpldirectory = './template/default';
    $file = '.' . $tpldirectory . '/' . $primaltplname . '.htm';
    $content = file_get_contents(realpath($file));
    foreach ($data['layoutdata'] as $key => $value) {
        $html = '';
        $html .= '<div id="' . $key . '" class="area">';
        $html .= getframehtml($value);
        $html .= '</div>';
        $content = preg_replace("/(\<\!\-\-\[diy\=$key\]\-\-\>).+?(\<\!\-\-\[\/diy\]\-\-\>)/is", "\\1" . $html . "\\2", $content);
    }
    $content = preg_replace("/(\<style id\=\"diy_style\" type\=\"text\/css\"\>).*(\<\/style\>)/is", "\\1" . $data['spacecss'] . "\\2", $content);
    if (!empty($data['style'])) {
        $content = preg_replace("/(\<link id\=\"style_css\" rel\=\"stylesheet\" type\=\"text\/css\" href\=\").+?(\"\>)/is", "\\1" . $data['style'] . "\\2", $content);
    }

    $tplfile = ROOT_PATH . './data/diy/' . $tpldirectory . '/' . $targettplname . '.htm';

    $tplpath = dirname($tplfile);
    if (!is_dir($tplpath))
        dmkdir($tplpath);
    $r = file_put_contents($tplfile, $content);

    if ($r && $database) {
        $_G['db']->query('DELETE FROM ' . $_G['tablepre'] . 'common_template_block WHERE targettplname="' . $targettplname . '"');
        if (!empty($_G['curtplbid'])) {
            $values = array();
            foreach ($_G['curtplbid'] as $bid) {
                $values[] = "('$targettplname', '$tpldirectory', '$bid')";
            }
            if (!empty($values)) {
                $_G['db']->query("INSERT INTO " . $_G['tablepre'] . "common_template_block (targettplname, tpldirectory, bid) VALUES " . implode(',', $values));
            }
        }

        $tpldata = daddslashes(serialize($data));
        $_G['db']->query("REPLACE INTO " . $_G['tablepre'] . "common_diy_data (targettplname, tpldirectory, primaltplname, diycontent) VALUES ('$targettplname', '$tpldirectory', '$primaltplname', '$tpldata')");
    }

    return $r;
}

function getframehtml($data = array()) {
    global $_G;
    $html = $style = '';
    foreach ((array) $data as $id => $content) {
        list($flag, $name) = explode('`', $id);
        if ($flag == 'frame') {
            $fattr = $content['attr'];
            $moveable = $fattr['moveable'] == 'true' ? ' move-span' : '';
            $html .= '<div id="' . $fattr['name'] . '" class="' . $fattr['className'] . '">';
            if (checkhastitle($fattr['titles'])) {
                $style = gettitlestyle($fattr['titles']);
                $html .= '<div class="' . implode(' ', $fattr['titles']['className']) . '"' . $style . '>' . gettitlehtml($fattr['titles'], 'frame') . '</div>';
            }
            foreach ((array) $content as $colid => $coldata) {
                list($colflag, $colname) = explode('`', $colid);
                if ($colflag == 'column') {
                    $html .= '<div id="' . $colname . '" class="' . $coldata['attr']['className'] . '">';
                    $html .= '<div id="' . $colname . '_temp" class="move-span temp"></div>';
                    $html .= getframehtml($coldata);
                    $html .= '</div>';
                }
            }
            $html .= '</div>';
        } elseif ($flag == 'tab') {
            $fattr = $content['attr'];
            $moveable = $fattr['moveable'] == 'true' ? ' move-span' : '';
            $html .= '<div id="' . $fattr['name'] . '" class="' . $fattr['className'] . '">';
            $switchtype = 'click';
            foreach ((array) $content as $colid => $coldata) {
                list($colflag, $colname) = explode('`', $colid);
                if ($colflag == 'column') {
                    if (checkhastitle($fattr['titles'])) {
                        $style = gettitlestyle($fattr['titles']);
                        $title = gettitlehtml($fattr['titles'], 'tab');
                    }
                    $switchtype = is_array($fattr['titles']['switchType']) && !empty($fattr['titles']['switchType'][0]) ? $fattr['titles']['switchType'][0] : 'click';
                    $html .= '<div id="' . $colname . '" class="' . $coldata['attr']['className'] . '"' . $style . ' switchtype="' . $switchtype . '">' . $title;
                    $html .= getframehtml($coldata);
                    $html .= '</div>';
                }
            }
            $html .= '<div id="' . $fattr['name'] . '_content" class="tb-c"></div>';
            $html .= '<script type="text/javascript">initTab("' . $fattr['name'] . '","' . $switchtype . '");</script>';
            $html .= '</div>';
        } elseif ($flag == 'block') {
            $battr = $content['attr'];
            $bid = intval(str_replace('portal_block_', '', $battr['name']));
            if (!empty($bid)) {
                $html .= "<!--{block/{$bid}}-->";
                $_G['curtplbid'][$bid] = $bid;
            }
        }
    }

    return $html;
}

function gettitlestyle($title) {
    $style = '';
    if (is_array($title['style']) && count($title['style'])) {
        foreach ($title['style'] as $k => $v) {
            $style .= $k . ':' . $v . ';';
        }
    }
    $style = $style ? ' style=\'' . $style . '\'' : '';
    return $style;
}

function checkhastitle($title) {
    if (!is_array($title))
        return false;
    foreach ($title as $k => $v) {
        if (strval($k) == 'className')
            continue;
        if (!empty($v['text']))
            return true;
    }
    return false;
}

function gettitlehtml($title, $type) {
    global $_G;
    if (!is_array($title))
        return '';
    $html = $one = $style = $color = '';
    foreach ($title as $k => $v) {
        if (in_array(strval($k), array('className', 'style')))
            continue;
        if (empty($v['src']) && empty($v['text']))
            continue;
        $one = "<span class=\"{$v['className']}\"";
        $style = $color = "";
        $style .= empty($v['font-size']) ? '' : "font-size:{$v['font-size']}px;";
        $style .= empty($v['float']) ? '' : "float:{$v['float']};";
        $margin_ = empty($v['float']) ? 'left' : $v['float'];
        $style .= empty($v['margin']) ? '' : "margin-{$margin_}:{$v['margin']}px;";
        $color = empty($v['color']) ? '' : "color:{$v['color']};";
        $img = !empty($v['src']) ? '<img src="' . $v['src'] . '" class="vm" alt="' . $v['text'] . '"/>' : '';
        if (empty($v['href'])) {
            $style = empty($style) && empty($color) ? '' : ' style="' . $style . $color . '"';
            $one .= $style . ">$img{$v['text']}";
        } else {
            $style = empty($style) ? '' : ' style="' . $style . '"';
            $colorstyle = empty($color) ? '' : ' style="' . $color . '"';
            $one .= $style . '><a href="' . $v['href'] . '"' . $colorstyle . '>' . $img . $v['text'] . '</a>';
        }
        $one .= '</span>';

        $siteurl = str_replace(array('/', '.'), array('\/', '\.'), $_G['siteurl']);
        $one = preg_replace('/\"' . $siteurl . '(.*?)\"/', '"$1"', $one);

        $html = $k === 'first' ? $one . $html : $html . $one;
    }
    return $html;
}

function block_import($data) {
    global $_G;
    if (!is_array($data['block'])) {
        return;
    }
    $data = daddslashes($data);
    $stylemapping = array();
    if ($data['style']) {
        $hashes = $styles = array();
        foreach ($data['style'] as $value) {
            $hashes[] = $value['hash'];
            $styles[$value['hash']] = $value['styleid'];
        }
        $query = $_G['db']->query('SELECT styleid, hash FROM ' . $_G['tablepre'] . "common_block_style WHERE hash IN (" . dimplode($hashes) . ')');
        while ($value = $_G['db']->fetch_array($query)) {
            $id = $styles[$value['hash']];
            $stylemapping[$id] = intval($value['styleid']);
            unset($styles[$value['hash']]);
        }
        foreach ($styles as $id) {
            $style = $data['style'][$id];
            $style['styleid'] = '';
            if (is_array($style['template'])) {
                $style['template'] = dstripslashes($style['template']);
                $style['template'] = addslashes(serialize($style['template']));
            }
            $sql = implode_field_value($style);
            $_G['db']->query('INSERT INTO ' . $_G['tablepre'] . 'common_block_style SET ' . $sql);
            $newid = $_G['db']->insert_id();
            $stylemapping[$id] = $newid;
        }
    }

    $blockmapping = array();
    foreach ($data['block'] as $block) {
        $oid = $block['bid'];
        if (!empty($block['styleid'])) {
            $block['styleid'] = intval($stylemapping[$block['styleid']]);
        }
        $block['bid'] = '';
        $block['uid'] = $_G['uid'];
        $block['username'] = $_G['username'];
        $block['dateline'] = 0;
        if (is_array($block['param'])) {
            $block['param'] = dstripslashes($block['param']);
            $block['param'] = addslashes(serialize($block['param']));
        }
        $sql = implode_field_value($block);
        $_G['db']->query('INSERT INTO ' . $_G['tablepre'] . 'common_block SET ' . $sql);
        $newid = $_G['db']->insert_id();
        $blockmapping[$oid] = $newid;
    }
    return $blockmapping;
}

function getframeblock($data) {
    global $_G;

    if (!isset($_G['curtplbid']))
        $_G['curtplbid'] = array();
    if (!isset($_G['curtplframe']))
        $_G['curtplframe'] = array();

    foreach ((array) $data as $id => $content) {
        list($flag, $name) = explode('`', $id);
        if ($flag == 'frame' || $flag == 'tab') {
            foreach ((array) $content as $colid => $coldata) {
                list($colflag, $colname) = explode('`', $colid);
                if ($colflag == 'column') {
                    getframeblock($coldata, $framename);
                }
            }
            $_G['curtplframe'][$name] = array('type' => $flag, 'name' => $name);
        } elseif ($flag == 'block') {
            $battr = $content['attr'];
            $bid = intval(str_replace('portal_block_', '', $battr['name']));
            if (!empty($bid)) {
                $_G['curtplbid'][$bid] = $bid;
            }
        }
    }
}

function import_diy($importfile, $primaltplname, $targettplname) {
    global $_G;

    $css = $html = '';
    $arr = array();

    $content = file_get_contents(realpath($importfile));
    require_once ROOT_PATH . './source/class/class_xml.php';
    if (empty($content))
        return $arr;
    $diycontent = xml2array($content);

    if ($diycontent) {

        foreach ($diycontent['layoutdata'] as $key => $value) {
            if (!empty($value))
                getframeblock($value);
        }
        $newframe = array();
        foreach ($_G['curtplframe'] as $value) {
            $newframe[] = $value['type'] . random(6);
        }

        $mapping = array();
        if (!empty($diycontent['blockdata'])) {
            $mapping = block_import($diycontent['blockdata']);
            unset($diycontent['blockdata']);
        }

        $oldbids = $newbids = array();
        if (!empty($mapping)) {
            foreach ($mapping as $obid => $nbid) {
                $oldbids[] = 'portal_block_' . $obid;
                $newbids[] = 'portal_block_' . $nbid;
            }
        }

        require_once ROOT_PATH . './source/class/class_xml.php';
        $xml = array2xml($diycontent['layoutdata'], true);
        $xml = str_replace($oldbids, $newbids, $xml);
        $xml = str_replace((array) array_keys($_G['curtplframe']), $newframe, $xml);
        $diycontent['layoutdata'] = xml2array($xml);

        $css = str_replace($oldbids, $newbids, $diycontent['spacecss']);
        $css = str_replace((array) array_keys($_G['curtplframe']), $newframe, $css);

        $arr['spacecss'] = $css;
        $arr['layoutdata'] = $diycontent['layoutdata'];
        $arr['style'] = $diycontent['style'];
        save_diy_data($primaltplname, $targettplname, $arr, true);
    }
    return $arr;
}

function dimplode($array) {
    if (!empty($array)) {
        return "'" . implode("','", is_array($array) ? $array : array($array)) . "'";
    } else {
        return '';
    }
}

function implode_field_value($array, $glue = ',') {
    $sql = $comma = '';
    foreach ($array as $k => $v) {
        $sql .= $comma . "`$k`='$v'";
        $comma = $glue;
    }
    return $sql;
}

function daddslashes($string, $force = 1) {
    if (is_array($string)) {
        foreach ($string as $key => $val) {
            $string[$key] = daddslashes($val, $force);
        }
    } else {
        $string = addslashes($string);
    }
    return $string;
}

function dstripslashes($string) {
    if (is_array($string)) {
        foreach ($string as $key => $val) {
            $string[$key] = dstripslashes($val);
        }
    } else {
        $string = stripslashes($string);
    }
    return $string;
}

function dmkdir($dir, $mode = 0777) {
    if (!is_dir($dir)) {
        dmkdir(dirname($dir), $mode);
        @mkdir($dir, $mode);
        @touch($dir . '/index.htm');
        @chmod($dir . '/index.htm', 0777);
    }
    return true;
}

function dhtmlspecialchars($string) {
    if (is_array($string)) {
        foreach ($string as $key => $val) {
            $string[$key] = dhtmlspecialchars($val);
        }
    } else {
        $string = str_replace(array('&', '"', '<', '>'), array('&amp;', '&quot;', '&lt;', '&gt;'), $string);
        if (strpos($string, '&amp;#') !== false) {
            $string = preg_replace('/&amp;((#(\d{3,5}|x[a-fA-F0-9]{4}));)/', '&\\1', $string);
        }
    }
    return $string;
}

function install_extra_setting() {
    global $db, $tablepre, $lang;
    include ROOT_PATH . './install/include/install_extvar.php';
    foreach ($settings as $key => $val) {
        $db->query("REPLACE INTO {$tablepre}common_setting SET skey='$key', svalue='" . addslashes(serialize($val)) . "'");
    }
}
